Forums

Articles
Create
cancel
Showing results for 
Search instead for 
Did you mean: 
groups-icon

Trust & Security

Created Dec 2, 2020, Last active Jul 16, 2025

cancel
Showing results for 
Search instead for 
Did you mean: 
  • What are personal data?

    What are Personal Data? As the term indicates, personal data are any information related to an identified or identifiable person. In article 1 (1)(2) of GDPR, the regulation sets rules on protectin...

    Andreas Springer _Actonic_ published an article 9 1 April 4, 2022
  • Is GDPR for Everyone?

    What is GDPR? The GDPR is an EU law adopted in 2018 to protect the personal data of EU citizens. It ensures that businesses process and secure the personal data (name, address, phone number, or IP ...

    Andreas Springer _Actonic_ published an article 9 2 April 1, 2022
  • Is Jira (on-prem) affected by Spring4Shell?

    A summary of the zero-day Spring4Shell vulnerability is shown here: https://securityboulevard.com/2022/03/spring4shell-zero-day-attack-what-you-need-to-know/  

    jy started a discussion 1 2 March 31, 2022
  • HECVAT Response

    Atlassian’s Trust team now has a completed response for the Higher Education Cloud Vendor Assessment Toolkit (HECVAT) for our Cloud products.   What is HECVAT? The HECVAT is a structured q...

    Bill Marriott published an article 8 1 March 31, 2022
  • Having issues in Jira Timesheet

    Hi team,      As I'm using Jira application, while updating timesheet, having issues with reloading, While updating a timesheet for a task it redirects and showing empty, every time ...

    Loganathan started a discussion 1 1 March 31, 2022
  • Spring4Shell: Security Analysis of the latest Java RCE '0-day' vulnerabilities in Spring

    Regarding the "spring4shell"  vulnerability  in https://www.lunasec.io/docs/blog/spring-rce-vulnerabilities/ . Does anyone know that this vulnerability affect...

    James Clarke started a discussion 26 6 March 31, 2022
  • Unpatched Java Spring Framework 0-Day RCE Bug Threatens Enterprise Web Apps Security

    Hi Seems to be that new threat is out and would it peril Atlassian products server/dc also? https://www.bleepingcomputer.com/news/security/new-spring-java-framework-zero-day-allows-remote-code-exec...

    Urmo Luts started a discussion 3 2 March 31, 2022
  • Spring4Shell: Security Analysis of the latest Java RCE '0-day' vulnerabilities in Spring

    Today, I find that "spring2shell" volnerabilities in https://www.lunasec.io/docs/blog/spring-rce-vulnerabilities/ . Does anyone know that this volnerabilities affect Atlassian products such lik...

    Chihara started a discussion 7 8 March 30, 2022
  • Check out our new group just for Data Center!

    Hi there Trust and Security group members! I’m part of the Data Center marketing team here at Atlassian and wanted to be sure you all knew about our new Data Center community group. Just as this Trus...

    Mel Policicchio published an article 5 13 March 28, 2022
  • Atlassian's Response to the LAPSUS$ Okta Incident

    On March 22, identity and access management company Okta disclosed the account compromise of a third-party customer support engineer that occurred in January 2022. LAPSUS$ claimed responsibility for ...

    Dan Hranj published an article 16 5 March 22, 2022
  • Cloud: Atlassian internal logging and customer data

    A customer who is migrating to Cloud is asking for confirmation that Personal Identifiable Information (PII) and user data (e.g. issue titles, summary, attachment filenames, project names, etc.) are ...

    Dom Bush started a discussion 3 4 March 22, 2022
  • Jira API Integration

    We've concerns over anyone being able to set up an API integration. We would like to see information that documents what kind of levels of access there are, if they can be managed (I believe they ca...

    Piyush A (STR) started a discussion 1 2 March 16, 2022
  • Why is data anonymization important?

    What is data anonymization? By definition, data anonymization is information sanitization for privacy protection. It is the process of removing personally identifiable information from data sets ...

    Andreas Springer _Actonic_ published an article 5 1 March 10, 2022
  • Five key steps for a data security plan

    When customers entrust you with their personal information, like their credit card numbers, addresses for delivery, names, IP addresses… it is because they trust you to handle and protect their data....

    Andreas Springer _Actonic_ published an article 7 2 March 3, 2022
  • Atlassian's Whistic Security Profiles - 2022 Update

    ...rofile Opsgenie Security Profile  Statuspage Security Profile Trello Security Profile In true Atlassian spirit, we believe that opening as many channels for our customers t...

    pknowlton published an article 7 0 February 28, 2022
  • Four steps to ensure you are GDPR compliant

    GDPR stands for General Data Protection Regulation. It is a privacy and security regulation, and it is considered one of the toughest in the world. GDPR came into effect in May 2018, impacting organi...

    Andreas Springer _Actonic_ published an article 5 1 February 24, 2022
  • FY22 ISO/IEC 27001 Certification Update

    ISO/IEC 27001 Certification Update Overview The International Organization for Standardization (ISO) is an independent, non-governmental international organization with a me...

    Hema Vadodaria published an article 9 2 February 3, 2022
  • Halp Security Profile at Whistic

    ...psgenie Security Profile  Statuspage Security Profile Trello Security Profile In true Atlassian spirit we believe that opening as many channels for our customers to self serve is a more s...

    Bill Marriott published an article 11 0 February 3, 2022
  • Icarus Labs research diary: Hiding malware in Docker Desktop's virtual machine

    If you'd rather skip straight to the technical details, here's the blog post explaining how it all works. This post is the high-level story of how this technique was found, in which the story makes...

    Alex Hope published an article 9 1 January 26, 2022
  • Hiding malware in Docker Desktop's virtual machine

    ...ettings.json to set openUIOnStartupDisabled to true. (This can be done without root access.) When Docker Desktop starts, our malware will be running in a shell like this. root@docker-desktop:/# ls A...

    Alex Hope published an article 22 0 January 26, 2022
  • Cloud Security Alliance CAIQ Updates - January 2022

    Atlassian maintains submissions to the Cloud Security Alliance (CSA) STAR Registry for our major Cloud Services. The STAR Registry hosts the Consensus Assessment Initiative Questionnaire (CAIQ), whic...

    Bill Marriott published an article 8 0 January 19, 2022
  • Atlassian Bug Bounty Update - January 2022

    We maintain an always on bug bounty to identify and triage issues in our products and services. Many customers ask us for ‘penetration reports’ or similar - basically a report from a third-party that...

    Bill Marriott published an article 7 0 January 19, 2022
  • Unknow User Requests To Join My Private Jira

    Hi there, I use atlassian jira/confluence to stay in practice (Germany). Today I've got an e-mail from an unknown person (don't have any contacts to (?) Mexico - sure we're working on the www inter...

    Peter Freyler started a discussion 1 1 January 14, 2022
  • Global Permission Owner

    Hello guys, I am using the Confluence but i do not know which email has the Global Permissions. Since the administrator created the trial and set up everything but now the roles somehow changed with...

    Asrar started a discussion 2 1 January 10, 2022
  • Cloud Compliance AMA

    G’day everyone and happy 2022!  My name is Filiberto Selvas and I’m a Principal Product Manager focused on data management and compliance in highly regulated industries ! At Atlassian, we unde...

    Filiberto Selvas published an article 14 22 January 4, 2022
3,058
members
414
posts
This widget could not be displayed.
This widget could not be displayed.

Description

The Trust & Security community group is Atlassian's go-to space for all things Security, Compliance, Privacy and more. This group is to share information, tips, and best practices for protecting your data and using Atlassian products in a secure and reliable way.

AUG Leaders

Atlassian Community Events

Group Leaders • 7
Atlassian Team
Atlassian Team
Atlassian Team
Atlassian Team
Atlassian Team
Members • 3057
I'm New Here
Atlassian Team
Atlassian Team
Contributor
See all